StackRadar

dify-enterprise 3.9.8 Helm chart

openshift

Scored 14 Sept 2026

Release https://langgenius.github.io/dify-helm/

Version 3.9.8deploys tag 3.9.8-ubi9 0Artifact Hub

dify-enterprise 3.9.8 deploys 13 container images: langgenius/dify-ee-api, langgenius/dify-ee-audit, langgenius/dify-ee-collector, langgenius/dify-ee-enterprise and 9 more. Across the 10 measured, 547 findings0 critical, 0 high. The highest contribution is GHSA-p293-qw3h-jr36 in next 16.2.6, fixed in 16.3.3. Chart.yaml declares kubeVersion >=1.21.0; rendered for Kubernetes 1.21.0.

Radar Score

4,6600020527

547 findings over 10 of 13 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

13 images
ImageTagVulnerabilitiesRadar Score
langgenius/dify-ee-api×43.9.8-ubi9not yet scanned
langgenius/dify-ee-audit3.9.8-ubi900051387
langgenius/dify-ee-collector3.9.8-ubi900053399
langgenius/dify-ee-enterprise3.9.8-ubi900050383
langgenius/dify-ee-enterprise-frontend3.9.8-ubi9001056739
langgenius/dify-ee-gateway3.9.8-ubi900054404
registry.redhat.io/rhel10/squid10.2-1784142920unmeasured
langgenius/dify-ee-plugin-connector3.9.8-ubi900052404
langgenius/dify-ee-plugin-crd3.9.8-ubi900050384
langgenius/dify-ee-plugin-daemon-serverless3.9.8-ubi900051399
langgenius/dify-ee-plugin-manager3.9.8-ubi900053408
langgenius/dify-ee-sandbox3.9.8-ubi9not yet scanned
langgenius/dify-ee-web3.9.8-ubi9001057753

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

10 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGHSA-p293-qw3h-jr36next@16.2.616.3.3
MediumGHSA-m99w-x7hq-7vfjnext@16.2.616.2.11
MediumGHSA-grv7-fg5c-xmjgbraces@3.0.23.0.3
MediumGHSA-6gpp-xcg3-4w24next@16.2.616.2.11
MediumGHSA-89xv-2m56-2m9xnext@16.2.616.2.11
MediumGHSA-p9j2-gv94-2wf4next@16.2.616.2.11
MediumRHSA-2026:55601nodejs-nodemon@3.0.3-3.module+el9.8.0+24355+35d95b590:3.1.14-2.module+el9.8.0+24637+e0b636e5
MediumRHSA-2026:55603nodejs@1:24.18.0-1.module+el9.8.0+24456+b244c3b41:24.18.0-6.module+el9.8.0+24638+75f46aee
MediumRHSA-2026:55603nodejs-nodemon@3.0.3-3.module+el9.8.0+24355+35d95b590:3.1.14-3.module+el9.8.0+24638+75f46aee
MediumGHSA-3ppc-4f35-3m26minimatch@3.1.23.1.3

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
3.9.8latest3.9.8-ubi900205274,660

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/openshift/dify-enterprise.svg)](https://charts.stackradar.io/charts/openshift/dify-enterprise)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.